Malware

What is “MSIL/Kryptik.ABVY”?

Malware Removal

The MSIL/Kryptik.ABVY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ABVY virus can do?

  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine MSIL/Kryptik.ABVY?


File Info:

name: 22A5BD0B865E3DD0C951.mlw
path: /opt/CAPEv2/storage/binaries/9ff6bc554184a7658a613be227cb0bc0b2d9d74298aceff78901b300f2779a54
crc32: D92EA5DB
md5: 22a5bd0b865e3dd0c951a27279616753
sha1: 6dd2e410d08c8bdd87c625a40a9799aed53bebba
sha256: 9ff6bc554184a7658a613be227cb0bc0b2d9d74298aceff78901b300f2779a54
sha512: e1e50bf467689bbeca30ad1c265a9a0856519b94e18483e9fd3557fee5bb7097a80bf206b5a48d210bc1019a5022490ef24281e2e318f7c30d5c4bccfd117620
ssdeep: 1536:RuYNiFZNsdzP+2131trwv1GX8POnFJOFfHYToPTD97uxzw0on3MSANfLx712KbjR:SFsMkllq1UnFefHYToPTx7rMd7B9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BEC3BF11B690D876C0A904718CA7C1700BBABD3289B5C84F7BC93BBE4E723C15E66B57
sha3_384: 4b41d62541df5e77d786abae253b9ea31f807256c11ad9406fe0b2446c4f96a8870ff233d0e43001b85bfa2a27667290
ep_bytes:
timestamp: 2072-02-04 09:28:25

Version Info:

0: [No Data]

MSIL/Kryptik.ABVY also known as:

MicroWorld-eScanTrojan.GenericKD.38125459
FireEyeGeneric.mg.22a5bd0b865e3dd0
CAT-QuickHealTrojan.MFC.S22017643
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/Kryptik.ABVY
APEXMalicious
ClamAVWin.Dropper.Genericrxpd-9897601-0
BitDefenderTrojan.GenericKD.38125459
Ad-AwareTrojan.GenericKD.38125459
EmsisoftTrojan.GenericKD.38125459 (B)
ComodoHeur.Corrupt.PE@1z141z3
DrWebTrojan.PackedNET.917
McAfee-GW-EditionBehavesLike.Win32.Picsys.ch
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.MSIL.aciq
MAXmalware (ai score=86)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D245BF93
GDataTrojan.GenericKD.38125459
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.38125459
MalwarebytesTrojan.Downloader
IkarusTrojan-Spy.Agent
FortinetMSIL/Kryptik.ACHO!tr
CrowdStrikewin/malicious_confidence_90% (W)

How to remove MSIL/Kryptik.ABVY?

MSIL/Kryptik.ABVY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment